Is Gamma HIPAA compliant?
UnverifiedGamma Tech, Inc. · Design
Not verified. Check directly with Gamma Tech, Inc. before using Gamma with protected health information (PHI).
What we checked
This assessment separates the consumer product from any business plan. It uses the vendor documents linked below; an unverified item is not a pass.
- Business Associate Agreement
- Not verified
- No public BAA was confirmed. Treat PHI use as blocked until Gamma Tech, Inc. provides written terms.
- Enterprise route
- Business (and Enterprise)
- For regulated use, validate the BAA, configured service and users under the Business (and Enterprise) contract.
- Default data training
- Opt-out required
- On Free/Plus/Pro/Ultra individual plans, Gamma uses de-identified, anonymized content to improve its AI features by default, but users can disable this in account settings at any time.
- Business-tier training
- No by default
- For all Team and Business workspaces, content is automatically and permanently excluded from AI training (the setting is locked and cannot be enabled).
Practical risk: On individual Free/Plus plans your presentation content is fed into AI model improvement by default, so an at-work user must manually opt out (or move to a Team/Business workspace) to keep client material out of training.
How to make a decision
Check the precise account tier, written contract and intended data before approving Gamma. A security certification, DPA or setting can apply to only part of a vendor's service. Keep the source links with your supplier review and revisit them when the vendor changes its terms.
More on Gamma
Is Gamma GDPR compliant?Is Gamma SOC 2 compliant?Is Gamma ISO 27001 certified?Does Gamma train on your data?
See the full Gamma risk profile, with every data-handling fact and its source, or browse all rated AI tools.